Lavasoft Ad-aware Personal Build 6.181
Logfile created on :Wednesday, December 17, 2003 10:49:52 PM
Created with Ad-aware Personal, free for private use.
Using reference-file :01R238 18.12.2003
______________________________________________________
Ad-aware Settings
=========================
Set : Activate in-depth scan (Recommended)
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
12-17-03 10:49:52 PM – Scan started. (Smart mode)
Listing running processes
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 12-11-03 5:45:28 PM
BasePriority : Normal
#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:29 PM
BasePriority : High
#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:29 PM
BasePriority : Normal
FileSize : 99 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:29 PM
BasePriority : Normal
FileSize : 11 KB
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:5 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:30 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:6 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:30 PM
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:7 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 980 KB
FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
ProductVersion : 6.00.2800.1106
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:8 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 50 KB
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:9 [igfxtray.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 152 KB
FileVersion : 3,0,0,1915
ProductVersion : 7,0,0,1915
Copyright : Copyright 1999-2002, Intel Corporation
CompanyName : Intel Corporation
FileDescription : igfxTray Module
InternalName : IGFXTRAY
OriginalFilename : IGFXTRAY.EXE
ProductName : Intel(R) Common User Interface
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 10/15/02 8:54:50 PM
#:10 [hkcmd.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 112 KB
FileVersion : 3,0,0,1915
ProductVersion : 7,0,0,1915
Copyright : Copyright 1999-2002, Intel Corporation
CompanyName : Intel Corporation
FileDescription : hkcmd Module
InternalName : HKCMD
OriginalFilename : HKCMD.EXE
ProductName : Intel(R) Common User Interface
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 10/15/02 8:42:26 PM
#:11 [promon.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 72 KB
FileVersion : 5.3.42.0
ProductVersion : 5.3.42.0
Copyright : Copyright (C) 1998-2002 Intel Corporation.
CompanyName : Intel Corporation
FileDescription : Intel(R) PROSet Tray Icon
InternalName : Intel(R) PROMonitor
OriginalFilename : PROMon.exe
ProductName : Intel(R) PROMonitor
Created on : 04/19/02 1:32:36 AM
Last accessed : 12/18/03 4:48:42 AM
Last modified : 04/19/02 1:32:36 AM
#:12 [smtray.exe]
FilePath : C:\Program Files\Analog Devices\SoundMAX\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 88 KB
FileVersion : 3, 2, 10, 0
ProductVersion : 3, 2, 10, 0
Copyright : Copyright
CompanyName : Analog Devices, Inc.
FileDescription : SoundMAX System Tray
InternalName : SMTray
OriginalFilename : SMTray.exe
ProductName : SoundMAX Integrated Digital Audio
Created on : 03/22/03 1:09:10 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 06/26/02 11:36:58 PM
#:13 [xicon.exe]
FilePath : C:\PROGRA~1\Xpoint\agent\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 52 KB
Created on : 06/28/03 6:51:33 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/07/02 4:25:18 PM
#:14 [pcrecsa.exe]
FilePath : C:\PROGRA~1\Xpoint\PE\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 2500 KB
Created on : 06/28/03 6:51:35 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/14/02 9:37:36 PM
#:15 [avsynmgr.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Normal
FileSize : 152 KB
Created on : 04/30/01 10:51:00 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 04/30/01 10:51:00 AM
#:16 [wcmdmgr.exe]
FilePath : C:\WINDOWS\wt\updater\
ThreadCreationTime : 12-11-03 5:45:35 PM
BasePriority : Idle
FileSize : 140 KB
FileVersion : 1.6.0.37
ProductVersion : 1.6.0.37
Copyright : Copyright
CompanyName : WildTangent, Inc.
FileDescription : wcmdmgr
InternalName : WildTangent Updater Service
OriginalFilename : wcmdmgr.exe
ProductName : WildTangent Updater Service
Created on : 11/06/03 12:05:30 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 09/27/02 8:47:32 PM
#:17 [qttask.exe]
FilePath : C:\Program Files\QuickTime\
ThreadCreationTime : 12-11-03 5:45:36 PM
BasePriority : Normal
FileSize : 76 KB
FileVersion : 6.4
ProductVersion : QuickTime 6.4
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
OriginalFilename : QTTask.exe
ProductName : QuickTime
Created on : 11/18/03 1:41:31 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 11/18/03 1:41:31 AM
#:18 [winampa.exe]
FilePath : C:\Program Files\Winamp3\
ThreadCreationTime : 12-11-03 5:45:36 PM
BasePriority : Normal
FileSize : 12 KB
Created on : 07/23/02 4:58:06 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 07/23/02 4:58:06 PM
#:19 [msdtc.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:36 PM
BasePriority : Normal
FileSize : 6 KB
FileVersion : 2001.12.4414.42
ProductVersion : 03.01.00.4414
Copyright : Copyright (C) Microsoft Corp. 1995-1998
CompanyName : Microsoft Corporation
FileDescription : MS DTC console program
InternalName : MSDTC.EXE
ProductName : Microsoft Distributed Transaction Coordinator
Created on : 09/23/02 8:29:35 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/29/02 12:00:00 PM
#:20 [dw.exe]
FilePath : C:\Program Files\DownloadWare\
ThreadCreationTime : 12-11-03 5:45:36 PM
BasePriority : Normal
FileSize : 183 KB
FileVersion : 1.0.0.116
ProductVersion : 1.0.0.116
Copyright : DownloadWare
FileDescription : DownloadWare
ProductName : DownloadWare
Created on : 12/08/03 9:22:36 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 12/08/03 9:22:33 PM
Warning! DownloadWare object found in memory(C:\Program Files\DownloadWare\dw.exe)
DownloadWare Object recognized!
Type : Process
Data : dw.exe
Object : C:\Program Files\DownloadWare\
FileSize : 183 KB
FileVersion : 1.0.0.116
ProductVersion : 1.0.0.116
Copyright : DownloadWare
FileDescription : DownloadWare
ProductName : DownloadWare
Created on : 12/08/03 9:22:36 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 12/08/03 9:22:33 PM
“dw.exe”Process terminated successfully.
#:21 [smagent.exe]
FilePath : C:\Program Files\Analog Devices\SoundMAX\
ThreadCreationTime : 12-11-03 5:45:38 PM
BasePriority : Normal
FileSize : 44 KB
FileVersion : 3, 2, 5, 0
ProductVersion : 3, 2, 5, 0
Copyright : Copyright
CompanyName : Analog Devices, Inc.
FileDescription : SoundMAX service agent component
InternalName : SMAgent
OriginalFilename : SMAgent.exe
ProductName : SoundMAX service agent
Created on : 03/22/03 1:09:10 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 07/15/02 10:36:54 PM
#:22 [xpadmin.exe]
FilePath : C:\PROGRA~1\Xpoint\xpadmin\
ThreadCreationTime : 12-11-03 5:45:38 PM
BasePriority : Normal
FileSize : 28 KB
Created on : 06/28/03 6:51:33 PM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 08/07/02 4:22:18 PM
#:23 [bargains.exe]
FilePath : C:\Program Files\Bargain Buddy\bin2\
ThreadCreationTime : 12-11-03 5:45:38 PM
BasePriority : Normal
FileSize : 348 KB
FileVersion : 1, 8, 18, 0
ProductVersion : 1, 8, 18, 0
Copyright : Copyright
FileDescription : bargains
InternalName : bargains
OriginalFilename : bargains.exe
ProductName : bargains buddy
Created on : 12/11/03 4:30:19 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 10/15/03 3:52:20 AM
Other Object recognized!
Type : Process
Data : bargains.exe
Object : C:\Program Files\Bargain Buddy\bin2\
FileSize : 348 KB
FileVersion : 1, 8, 18, 0
ProductVersion : 1, 8, 18, 0
Copyright : Copyright
FileDescription : bargains
InternalName : bargains
OriginalFilename : bargains.exe
ProductName : bargains buddy
Created on : 12/11/03 4:30:19 AM
Last accessed : 12/18/03 4:49:52 AM
Last modified : 10/15/03 3:52:20 AM
Warning! Other object found in memory(bargains.exe)
“bargains.exe”Process terminated successfully.
#:24 [xpagent.exe]
FilePath : C:\PROGRA~1\Xpoint\agent\
ThreadCreationTime : 12-11-03 5:45:39 PM
BasePriority : Normal
FileSize : 96 KB
Created on : 06/28/03 6:51:33 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 08/07/02 4:24:42 PM
#:25 [vsstat.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 12-11-03 5:45:39 PM
BasePriority : Normal
FileSize : 96 KB
Created on : 04/30/01 10:51:00 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 04/30/01 10:51:00 AM
#:26 [vshwin32.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 12-11-03 5:45:40 PM
BasePriority : Normal
FileSize : 116 KB
Created on : 04/30/01 10:51:00 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 04/30/01 10:51:00 AM
#:27 [xpclient.exe]
FilePath : C:\PROGRA~1\Xpoint\EEClient\
ThreadCreationTime : 12-11-03 5:45:41 PM
BasePriority : Normal
FileSize : 808 KB
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
Copyright : Copyright
CompanyName : Xpoint Technologies
FileDescription : Uptime
InternalName : Uptime!
ProductName : Xpoint Technologies Uptime!
Created on : 06/28/03 6:51:36 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 08/07/02 4:23:42 PM
#:28 [winnet.exe]
FilePath : C:\PROGRA~1\COMMON~2\ADDRES~1\
ThreadCreationTime : 12-11-03 5:45:41 PM
BasePriority : Normal
FileSize : 84 KB
FileVersion : 5, 0, 0, 3
ProductVersion : 5, 0, 0, 3
Copyright : Copyright
CompanyName : CommonName
FileDescription : Winnet
InternalName : Winnet
OriginalFilename : Winnet
ProductName : Winnet
Created on : 11/26/03 5:25:05 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 11/26/03 5:25:05 PM
#:29 [cmd.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 12-11-03 5:45:42 PM
BasePriority : Normal
FileSize : 367 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Windows Command Processor
InternalName : cmd
OriginalFilename : Cmd.Exe
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 08/29/02 12:00:00 PM
#:30 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-11-03 5:45:42 PM
BasePriority : Normal
FileSize : 31 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Run a DLL as an App
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 01/01/80 7:00:00 AM
Last accessed : 12/18/03 4:48:48 AM
Last modified : 08/29/02 12:00:00 PM
#:31 [javaw.exe]
FilePath : C:\PROGRA~1\Xpoint\SAS\jre\bin\
ThreadCreationTime : 12-11-03 5:45:42 PM
BasePriority : Normal
FileSize : 20 KB
Created on : 06/28/03 6:51:37 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 08/07/02 3:27:34 PM
#:32 [purrrint.exe]
FilePath : C:\
ThreadCreationTime : 12-11-03 5:45:42 PM
BasePriority : Normal
FileSize : 85 KB
FileVersion : 1, 0, 0, 9
ProductVersion : 1, 0, 0, 9
Copyright : Copyright
CompanyName : angeldust
FileDescription : PrintScreen extension
InternalName : purrint
OriginalFilename : purrint.exe
ProductName : Purrint
Created on : 06/28/03 5:41:07 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 06/03/02 2:56:16 PM
#:33 [comwiz.exe]
FilePath : C:\PROGRA~1\COMMON~2\ADDRES~1\
ThreadCreationTime : 12-11-03 5:45:43 PM
BasePriority : Normal
FileSize : 20 KB
FileVersion : 4, 6, 6, 0
ProductVersion : 4, 6, 6, 0
Copyright : Copyright
FileDescription : comwiz
InternalName : comwiz
OriginalFilename : comwiz.exe
ProductName : comwiz
Created on : 11/26/03 5:23:00 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 11/26/03 5:23:00 PM
CommonName Object recognized!
Type : Process
Data : comwiz.exe
Object : C:\PROGRA~1\COMMON~2\ADDRES~1\
FileSize : 20 KB
FileVersion : 4, 6, 6, 0
ProductVersion : 4, 6, 6, 0
Copyright : Copyright
FileDescription : comwiz
InternalName : comwiz
OriginalFilename : comwiz.exe
ProductName : comwiz
Created on : 11/26/03 5:23:00 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 11/26/03 5:23:00 PM
Warning! CommonName object found in memory(comwiz.exe)
“comwiz.exe”Process terminated successfully.
#:34 [avconsol.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 12-11-03 5:45:45 PM
BasePriority : Normal
FileSize : 160 KB
Created on : 04/30/01 10:51:00 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 04/30/01 10:51:00 AM
#:35 [mcshield.exe]
FilePath : C:\Program Files\Common Files\Network Associates\McShield\
ThreadCreationTime : 12-11-03 5:45:53 PM
BasePriority : High
FileSize : 224 KB
Created on : 04/30/01 10:51:00 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 04/30/01 10:51:00 AM
#:36 [iexplore.exe]
FilePath : C:\Program Files\Internet Explorer\
ThreadCreationTime : 12-16-03 8:42:40 PM
BasePriority : Normal
FileSize : 89 KB
FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
ProductVersion : 6.00.2800.1106
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
OriginalFilename : IEXPLORE.EXE
ProductName : Microsoft
Created on : 09/23/02 8:31:00 PM
Last accessed : 12/18/03 4:49:41 AM
Last modified : 08/29/02 12:00:00 PM
#:37 [rrvyrqwz.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 12-17-03 12:39:47 AM
BasePriority : Normal
FileSize : 112 KB
Created on : 09/23/02 8:29:37 PM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 08/29/02 12:00:00 PM
#:38 [av.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 12-17-03 12:43:16 AM
BasePriority : Normal
FileSize : 19 KB
Created on : 12/17/03 12:39:45 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 12/17/03 12:43:16 AM
#:39 [msbb.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 12-18-03 12:41:10 AM
BasePriority : Normal
FileSize : 192 KB
FileVersion : 4.2
ProductVersion : 4.2
Copyright : Copyright
CompanyName : 180Solutions Inc
FileDescription : msbb
InternalName : msbb
OriginalFilename : msbb.exe
ProductName : n-CASE
Created on : 12/17/03 12:40:05 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 12/17/03 12:40:27 AM
Warning! NCase object found in memory(C:\WINDOWS\msbb.exe)
NCase Object recognized!
Type : Process
Data : msbb.exe
Object : C:\WINDOWS\
FileSize : 192 KB
FileVersion : 4.2
ProductVersion : 4.2
Copyright : Copyright
CompanyName : 180Solutions Inc
FileDescription : msbb
InternalName : msbb
OriginalFilename : msbb.exe
ProductName : n-CASE
Created on : 12/17/03 12:40:05 AM
Last accessed : 12/18/03 4:49:53 AM
Last modified : 12/17/03 12:40:27 AM
“msbb.exe”Process terminated successfully.
#:40 [ad-aware.exe]
FilePath : \W01-14096\Ad-aware 6\
ThreadCreationTime : 12-18-03 4:49:27 AM
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 08/03/03 5:49:13 AM
Last accessed : 12/18/03 4:09:45 AM
Last modified : 07/13/03 3:00:20 AM
#:41 [winhost32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 12-18-03 4:49:38 AM
BasePriority : Normal
FileSize : 96 KB
FileVersion : 0, 310, 14, 1115
ProductVersion : 1, 0, 0, 0
OriginalFilename : winhost32.exe
ProductName : TargetSoft
Created on : 12/08/03 11:58:41 PM
Last accessed : 12/18/03 4:08:38 AM
Last modified : 12/08/03 11:58:41 PM
Memory scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 4
Objects found so far: 4
Started registry scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TypeLib\{4EB7BBE8-2E15-424B-9DDB-2CDB9516A2A3}
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bargain Buddy
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Bargains
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{C6906A23-4717-4E1F-B6FD-F06EBED14177}
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Apuc.UrlCatcher.1
BargainBuddy Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Apuc.UrlCatcher
BookedSpace Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\BookedSpace
BookedSpace Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BookedSpace.Extension.5
BookedSpace Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BookedSpace.Extension
BrowserAid Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate
ClipGenie Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\TrayNotifier\ClipGenie
ClipGenie Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\TrayNotifier\ClipGenie
ClipGenie Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ClipGenie
ClipGenie Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\ClipGenie
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TypeLib\{D879D743-E2CC-4161-8034-2234203681C9}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CommonName
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000000-0000-0000-0000-000000000000}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\MenuExt\Search using CommonName
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\MenuExt\Email This Link
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\MenuExt\Bookmark This Page
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\MenuExt\Add A Page Note
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\AdvancedOptions\CommonName
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\CommonName
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\CommonName
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\PROTOCOLS\Handler\cn
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\Interface\{2D0F5208-3198-49A4-86A7-D65E9E582751}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\BabeIE.Helper.1
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\BabeIE.Helper
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\BabeIE.Handler.1
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\CLASSES\BabeIE.Handler
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{99908473-1135-4009-BE4F-32B921F86ED9}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{9346A6BB-1ED0-4174-AFB4-13CD4EC0AA40}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{6656b666-992f-4d74-8588-8ca69e97d90c}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.AgentIE.1
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.AgentIE
DownloadWare Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}
DownloadWare Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\DownloadWare
DownloadWare Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : SOFTWARE\DownloadWare
DownloadWare Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TYPELIB\{6d3f5de4-e980-4407-a10f-9ac771abaae6}
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : pugi.pugiobj.1
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : pugi.pugiobj
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{7B9A715E-9D87-4C21-BF9E-F914F2FA953F}
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{71ed4fba-4024-4bbe-91dc-9704c93f453e}
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\IESearchbar
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IESearchbarIESearchbar
istbar Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71ED4FBA-4024-4bbe-91DC-9704C93F453E}
MSView Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TypeLib\{690BCCB4-6B83-4203-AE77-038C116594EC}
NCase Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\nCASE
NCase Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\msbb
NCase Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : SOFTWARE\180solutions\msbb
NCase Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : SOFTWARE\180solutions
NetworkEssentials Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\WebInstall
NetworkEssentials Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Hopper
RemanentBHO Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : AppID\BookedSpace.DLL
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.websearch.1
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.websearch
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.webcommand.1
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.webcommand
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.webbho.1
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : webcom.webbho
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TYPELIB\{a8f92c35-530b-4907-922c-ce31d4b6b14a}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{F5F0A448-2BCD-459E-8743-C39154EE1CA8}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{42BD9965-303D-4CFB-AAE0-DCADCB791A55}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{1EB48AA7-D3FE-4E4C-AC8E-B01594496AC0}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{9368d063-44be-49b9-bd14-bb9663fd38fc}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{49de8655-4d15-4536-b67c-2aa6c1106740}
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{00041A26-7033-432C-94C7-6371DE343822}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : _ATL_GENERATED.SearchToolbarName.1
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : _ATL_GENERATED.SearchToolbarName
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : _ATL_GENERATED.SearchToolbarBHO.1
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : _ATL_GENERATED.SearchToolbarBHO
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TypeLib\{2CF0B992-5EEB-4143-99C0-5297EF71F445}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\{2CF0B992-5EEB-4143-99C0-5297EF71F444}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\{2CF0B992-5EEB-4143-99C0-5297EF71F444}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2CF0B992-5EEB-4143-99C0-5297EF71F443}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2CF0B992-5EEB-4143-99C0-5297EF71F444}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{2CF0B992-5EEB-4143-99C0-5297EF71F444}
SearchAndClick Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{2CF0B992-5EEB-4143-99C0-5297EF71F443}
StopPop Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{4534CD6B-59D6-43FD-864B-06A0D843444A}
UpdateLoader Malware Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : TypeLib\{0B1B2B3B-4B5B-6B7B-8B9B-BBBBCBDBEBFB}
UpdateLoader Malware Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : Interface\{0C1C2C3C-4C5C-6C7C-8C9C-CCBCCCDCECFC}
UpdateLoader Malware Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : download_ul.downloadul.1
UpdateLoader Malware Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : download_ul.downloadul
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : vx2.vx2obj
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006b1-19b5-414a-849f-2a3c64ae6939}
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{000006b1-19b5-414a-849f-2a3c64ae6939}
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : bidll.bidllobj.1
BargainBuddy Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value : Bargains
DownloadWare Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Run
Value : DownloadWare
SCBAR Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\URLSearchHooks
Value : {9368D063-44BE-49B9-BD14-BB9663FD38FC}
SearchAndClick Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\run
Value : {2CF0B992-5EEB-4143-99C0-5297EF71F444}
Registry scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 94
Objects found so far: 98
Started deep registry scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Page.blazefind.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://www.blazefind.com”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\Main
Value : Search Page
Data : “http://www.blazefind.com”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainStart Page.blazefind.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://www.blazefind.com/”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\Main
Value : Start Page
Data : “http://www.blazefind.com/”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Bar.blazefind.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://www.blazefind.com/search.php?search=%s”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\Main
Value : Search Bar
Data : “http://www.blazefind.com/search.php?search=%s”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURL.blazefind.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://www.blazefind.com”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\SearchURL
Value :
Data : “http://www.blazefind.com”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistant.blazefind.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://www.blazefind.com/search_page.php”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\Search
Value : SearchAssistant
Data : “http://www.blazefind.com/search_page.php”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistant.searchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\Search
Value : SearchAssistant
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Page.searchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\Main
Value : Search Page
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainDefault_Search_URL.searchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\Main
Value : Default_Search_URL
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURL.searchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\SearchURL
Value :
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchSearchAssistantsearchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Internet Explorer\Search
Value : SearchAssistant
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainSearch Pagesearchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\Main
Value : Search Page
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\MainDefault_Search_URLsearchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\Main
Value : Default_Search_URL
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Possible browser hijack attempt : Software\Microsoft\Internet Explorer\SearchURLsearchenhancement.com
Possible Browser Hijack attempt Object recognized!
Type : RegData
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Internet Explorer\SearchURL
Value :
Data : “http://search.searchenhancement.com/nph-enhanced.cgi?affid=sesm&sstring=”
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : CLSID\{00000000-0000-0000-0000-000000000000}
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.Handler
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.Handler.1
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.Helper
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : BabeIE.Helper.1
istbar Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Internet Explorer\Toolbar
Value : {71ED4FBA-4024-4bbe-91DC-9704C93F453E}
Possible browser hijack attempt : {A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52} (http://public.searchbarcash.com/cab/016/gsqimkqo.cab)
Possible Browser Hijack attempt Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Code Store Database\Distribution Units\{A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52}
Possible browser hijack attempt : {A0FEEBD0-29C4-DD14-0F5F-B1EEEB6BCF52} (http://public.searchbarcash.com/cab/016/gsqimkqo.cab)
NCase Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Run
Value : msbb
NCase Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Run
Value : BHOUELR
NCase Object recognized!
Type : File
Data : bhouelr.exe
Object : c:\windows\
FileSize : 92 KB
Created on : 12/11/03 4:26:04 AM
Last accessed : 12/18/03 4:50:32 AM
Last modified : 12/11/03 4:26:07 AM
WinFavorites Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Run
Value : WinFavorites
WinFavorites Object recognized!
Type : File
Data : winfavorites.exe
Object : c:\program files\winfavorites\
FileSize : 72 KB
FileVersion : 1.01.0002
ProductVersion : 1.01.0002
InternalName : WinFavorites
OriginalFilename : WinFavorites.exe
ProductName : Win Favorites
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:50:32 AM
Last modified : 12/18/03 12:41:11 AM
CommonName Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CLASSES_ROOT
Object : PROTOCOLS\Handler\cn
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00041A26-7033-432C-94C7-6371DE343822}
Newton Knows Object recognized!
Type : LSP
Data : c:\windows\system32\inetadpt.dll
Layered Service Provider: inetadpt over [MSAFD Tcpip [TCP/IP]]
Newton Knows Object recognized!
Type : File
Data : inetadpt.dll
Object : c:\windows\system32\
FileSize : 216 KB
FileVersion : 0, 311, 11, 1522
ProductVersion : 1, 0, 0, 0
Copyright : Copyright 2003
InternalName : inetadpt.dll
OriginalFilename : inetadpt.dll
ProductName : TargetSoft
Created on : 12/08/03 9:22:42 PM
Last accessed : 12/18/03 4:08:37 AM
Last modified : 12/08/03 9:22:42 PM
Newton Knows Object recognized!
Type : LSP
Data : c:\windows\system32\inetadpt.dll
Layered Service Provider: inetadpt over [MSAFD Tcpip [UDP/IP]]
Newton Knows Object recognized!
Type : LSP
Data : c:\windows\system32\inetadpt.dll
Layered Service Provider: inetadpt over [MSAFD Tcpip [RAW/IP]]
Newton Knows Object recognized!
Type : LSP
Data : c:\windows\system32\inetadpt.dll
Layered Service Provider: inetadpt
Deep registry scan result :
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 29
Objects found so far: 130
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Tracking Cookie Object recognized!
Type : File
Data : node3@2o7[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
FileSize : 1 KB
Created on : 12/10/03 7:19:38 PM
Last accessed : 12/18/03 4:50:36 AM
Last modified : 12/10/03 7:28:06 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@ads.180solutions[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/13/03 11:24:29 AM
Last accessed : 12/18/03 4:50:36 AM
Last modified : 12/13/03 11:24:29 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@ads.specificpop[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/04/03 9:32:33 PM
Last accessed : 12/18/03 4:50:36 AM
Last modified : 12/04/03 9:32:33 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@adserving.autotrader[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/08/03 2:14:33 AM
Last accessed : 12/18/03 4:50:36 AM
Last modified : 12/08/03 2:14:33 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@advertising[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/12/03 1:13:02 PM
Last accessed : 12/18/03 4:50:36 AM
Last modified : 12/17/03 8:08:57 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@atdmt[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/13/03 6:56:15 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/13/03 6:56:15 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@bfast[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/08/03 12:32:57 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/08/03 1:04:35 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@bis.180solutions[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/18/03 12:41:25 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/18/03 12:41:25 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@bisads.180solutions[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/18/03 1:57:58 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/18/03 1:57:58 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@bluestreak[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/08/03 2:26:21 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/08/03 2:26:21 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@bravenet[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/06/03 2:07:26 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/06/03 2:14:28 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@centrport[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/17/03 12:02:45 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/17/03 12:02:45 AM
Other Object recognized!
Type : File
Data : node3@cgi-bin[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/18/03 1:21:27 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/18/03 1:21:27 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@clickagents[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/17/03 8:30:58 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/17/03 8:30:58 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@counter.hitslink[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/15/03 7:31:30 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/15/03 7:31:30 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@data.coremetrics[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/02/03 1:44:50 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/02/03 1:44:50 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@doubleclick[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/13/03 8:01:25 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/13/03 8:01:25 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@ehg-aol.hitbox[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/16/03 4:54:48 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/16/03 4:54:48 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@ehg-bareweb.hitbox[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/07/03 7:02:26 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/07/03 7:02:57 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@ehg-dig.hitbox[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
FileSize : 1 KB
Created on : 12/07/03 5:01:07 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/07/03 5:01:07 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@fastclick[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/18/03 1:58:09 AM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/18/03 1:58:09 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@hc2.humanclick[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/15/03 7:26:14 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 11/15/03 7:26:16 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@hitbox[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/16/03 4:34:41 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/16/03 4:54:48 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@internetfuel[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/09/03 9:09:30 PM
Last accessed : 12/18/03 4:50:37 AM
Last modified : 12/09/03 9:09:30 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@linksynergy[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/30/03 3:52:10 AM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 11/30/03 3:52:10 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@mediaplex[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/13/03 8:29:14 PM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 11/13/03 8:29:14 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@overture[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/02/03 3:54:55 PM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/15/03 9:53:23 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@pro-market[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/15/03 5:42:18 PM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/08/03 4:12:44 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@qksrv[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/08/03 12:18:04 AM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/08/03 12:18:06 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@servedby.advertising[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
FileSize : 1 KB
Created on : 12/18/03 1:57:47 AM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/18/03 1:57:47 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@tmpad[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/08/03 2:15:31 AM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/08/03 2:15:31 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@trafficmp[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/16/03 3:58:21 PM
Last accessed : 12/18/03 4:50:38 AM
Last modified : 12/17/03 8:09:32 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@valueclick[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/16/03 3:56:21 PM
Last accessed : 12/18/03 4:50:39 AM
Last modified : 12/16/03 3:56:21 PM
Tracking Cookie Object recognized!
Type : File
Data : node3@www2.skoobidoo[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/18/03 12:40:36 AM
Last accessed : 12/18/03 4:50:40 AM
Last modified : 12/18/03 12:40:36 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@z1.adserver[1].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 11/30/03 9:02:45 AM
Last accessed : 12/18/03 4:50:40 AM
Last modified : 12/14/03 4:28:28 AM
Tracking Cookie Object recognized!
Type : File
Data : node3@zedo[2].txt
Object : C:\Documents and Settings\Node3\Cookies\
Created on : 12/03/03 11:21:09 PM
Last accessed : 12/18/03 4:50:40 AM
Last modified : 12/09/03 12:07:59 AM
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Deep scanning and examining files (C:)
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
UpdateLoader Malware Object recognized!
Type : File
Data : randomiser.exe
Object : C:\WINDOWS\System32\
FileSize : 7 KB
Created on : 12/17/03 12:39:42 AM
Last accessed : 12/18/03 4:51:03 AM
Last modified : 12/17/03 12:48:10 AM
Performing conditional scans..
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
DownloadWare Object recognized!
Type : Folder
Object : c:\program files\DownloadWare
DownloadWare Object recognized!
Type : File
Data : digital signature 20031208.htm
Object : c:\windows\
Created on : 12/08/03 9:22:36 PM
Last accessed : 12/18/03 4:51:10 AM
Last modified : 12/08/03 11:58:52 PM
DownloadWare Object recognized!
Type : File
Data : digital signature 20031216.htm
Object : c:\windows\
Created on : 12/16/03 2:00:17 AM
Last accessed : 12/18/03 4:51:10 AM
Last modified : 12/16/03 2:00:17 AM
DownloadWare Object recognized!
Type : File
Data : cfg
Object : c:\program files\downloadware\
Created on : 12/08/03 9:22:36 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/16/03 2:00:18 AM
DownloadWare Object recognized!
Type : File
Data : downloads
Object : c:\program files\downloadware\
Created on : 12/08/03 9:22:36 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/16/03 2:00:20 AM
DownloadWare Object recognized!
Type : File
Data : temp
Object : c:\program files\downloadware\
Created on : 12/08/03 9:23:11 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/16/03 2:00:17 AM
CommonName Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value : Winnet
CommonName Object recognized!
Type : Folder
Object : c:\program files\CommonName
CommonName Object recognized!
Type : File
Data : winnet.ini
Object : c:\windows\system32\
Created on : 12/11/03 4:26:06 AM
Last accessed : 12/18/03 4:51:10 AM
Last modified : 12/11/03 4:27:13 AM
NCase Object recognized!
Type : Folder
Object : c:\program files\n-CASE
NCase Object recognized!
Type : Folder
Object : c:\windows\FLEOK
NCase Object recognized!
Type : File
Data : fiz1
Object : c:\program files\n-case\
FileSize : 10 KB
Created on : 12/11/03 5:51:38 PM
Last accessed : 12/18/03 4:51:10 AM
Last modified : 12/16/03 6:38:01 PM
NCase Object recognized!
Type : File
Data : fleok
Object : c:\program files\n-case\
Created on : 12/11/03 4:25:46 AM
Last accessed : 12/18/03 4:50:52 AM
Last modified : 12/11/03 4:26:10 AM
NCase Object recognized!
Type : File
Data : kyf.dat
Object : c:\program files\n-case\
FileSize : 2162 KB
Created on : 12/11/03 4:25:55 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/13/03 9:33:51 PM
NCase Object recognized!
Type : File
Data : msbb.exe
Object : c:\program files\n-case\
FileSize : 192 KB
FileVersion : 4.2
ProductVersion : 4.2
Copyright : Copyright
CompanyName : 180Solutions Inc
FileDescription : msbb
InternalName : msbb
OriginalFilename : msbb.exe
ProductName : n-CASE
Created on : 04/10/02 7:14:13 PM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/11/03 4:25:51 AM
NCase Object recognized!
Type : File
Data : ncmyb.dll
Object : c:\program files\n-case\
FileSize : 40 KB
Created on : 12/11/03 4:26:10 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/11/03 4:26:10 AM
NCase Object recognized!
Type : File
Data : ncmyb.dll
Object : c:\windows\
FileSize : 40 KB
Created on : 12/17/03 12:40:43 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/17/03 12:40:43 AM
NCase Object recognized!
Type : File
Data : kyf.dat
Object : c:\windows\
FileSize : 1939 KB
Created on : 12/17/03 12:40:11 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/18/03 12:41:32 AM
NCase Object recognized!
Type : File
Data : msbb.exe
Object : c:\windows\fleok\
FileSize : 192 KB
FileVersion : 4.2
ProductVersion : 4.2
Copyright : Copyright
CompanyName : 180Solutions Inc
FileDescription : msbb
InternalName : msbb
OriginalFilename : msbb.exe
ProductName : n-CASE
Created on : 12/17/03 12:40:19 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/17/03 12:40:27 AM
NCase Object recognized!
Type : File
Data : fiz1
Object : c:\windows\
FileSize : 4 KB
Created on : 12/17/03 12:43:04 AM
Last accessed : 12/18/03 4:08:44 AM
Last modified : 12/18/03 4:08:44 AM
BargainBuddy Object recognized!
Type : Folder
Object : c:\program files\bargain buddy\bin
BargainBuddy Object recognized!
Type : Folder
Object : c:\program files\Bargain Buddy
BargainBuddy Object recognized!
Type : File
Data : apuc.dll
Object : c:\program files\bargain buddy\bin\
FileSize : 68 KB
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
Copyright : Copyright 2001
FileDescription : apuc Module
InternalName : apuc
OriginalFilename : apuc.DLL
ProductName : apuc Module
Created on : 12/11/03 4:25:41 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 08/13/02 6:27:44 AM
BargainBuddy Object recognized!
Type : File
Data : bargains.exe
Object : c:\program files\bargain buddy\bin\
FileSize : 248 KB
Created on : 12/11/03 4:25:41 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 10/07/02 2:13:38 AM
BargainBuddy Object recognized!
Type : File
Data : ad.dat
Object : c:\program files\bargain buddy\
FileSize : 1132 KB
Created on : 12/11/03 4:25:42 AM
Last accessed : 12/18/03 4:37:38 AM
Last modified : 12/18/03 4:37:38 AM
BargainBuddy Object recognized!
Type : File
Data : bbchk.exe
Object : c:\program files\bargain buddy\
FileSize : 12 KB
FileVersion : 5.101.1663.1
ProductVersion : 5.101.1663.1
Copyright : Copyright (C) Microsoft Corp. 1981-1997
CompanyName : Microsoft Corporation
FileDescription : ECM ChkTrust
InternalName : CHKTRUST.EXE
OriginalFilename : CHKTRUST.EXE
ProductName : Microsoft(R) Windows NT(R) Operating System
Created on : 01/28/02 3:24:42 PM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 01/28/02 3:24:42 PM
BargainBuddy Object recognized!
Type : File
Data : bin
Object : c:\program files\bargain buddy\
Created on : 12/11/03 4:25:41 AM
Last accessed : 12/18/03 4:50:50 AM
Last modified : 12/11/03 4:25:41 AM
BargainBuddy Object recognized!
Type : File
Data : bin2
Object : c:\program files\bargain buddy\
Created on : 12/11/03 4:25:41 AM
Last accessed : 12/18/03 4:08:37 AM
Last modified : 12/11/03 4:30:19 AM
BargainBuddy Object recognized!
Type : File
Data : secret guide to free xxx passwords!.url
Object : c:\program files\bargain buddy\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/17/03 12:40:25 AM
BargainBuddy Object recognized!
Type : File
Data : ub.dat
Object : c:\program files\bargain buddy\
FileSize : 14 KB
Created on : 12/11/03 4:25:42 AM
Last accessed : 12/18/03 4:50:34 AM
Last modified : 12/18/03 2:17:01 AM
BargainBuddy Object recognized!
Type : File
Data : uninst.exe
Object : c:\program files\bargain buddy\
FileSize : 36 KB
Created on : 12/11/03 4:25:42 AM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/11/03 4:30:19 AM
BookedSpace Object recognized!
Type : File
Data : bsx32.ini
Object : c:\windows\
Created on : 12/08/03 9:22:23 PM
Last accessed : 12/18/03 4:50:34 AM
Last modified : 12/18/03 4:50:34 AM
BrowserAid Object recognized!
Type : File
Data : uptodate.exe
Object : c:\windows\
FileSize : 77 KB
Created on : 12/11/03 5:44:26 PM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/11/03 5:44:26 PM
ClipGenie Object recognized!
Type : Folder
Object : c:\program files\ClipGenie
ClipGenie Object recognized!
Type : File
Data : clipgenie.lnk
Object : c:\documents and settings\node3\start menu\programs\
FileSize : 1 KB
Created on : 12/08/03 9:23:12 PM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 12/08/03 9:23:12 PM
ClipGenie Object recognized!
Type : File
Data : cg.ini
Object : c:\program files\clipgenie\
Created on : 09/10/02 6:45:16 PM
Last accessed : 12/18/03 4:51:11 AM
Last modified : 09/10/02 6:45:16 PM
ClipGenie Object recognized!
Type : File
Data : clipgenie
Object : c:\program files\clipgenie\
Created on : 12/08/03 9:23:11 PM
Last accessed : 12/18/03 4:50:50 AM
Last modified : 12/08/03 9:23:11 PM
ClipGenie Object recognized!
Type : File
Data : download
Object : c:\program files\clipgenie\
Created on : 12/08/03 9:23:11 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/08/03 9:23:11 PM
ClipGenie Object recognized!
Type : File
Data : notify
Object : c:\program files\clipgenie\
Created on : 12/08/03 9:23:11 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/08/03 9:23:11 PM
ClipGenie Object recognized!
Type : File
Data : user.ini
Object : c:\program files\clipgenie\
Created on : 07/24/02 6:14:51 PM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 07/24/02 6:14:51 PM
ClipGenie Object recognized!
Type : File
Data : v1
Object : c:\program files\clipgenie\
Created on : 12/08/03 9:23:11 PM
Last accessed : 12/18/03 4:50:51 AM
Last modified : 12/08/03 9:23:11 PM
istbar Object recognized!
Type : Folder
Object : c:\program files\IESearchbar
SCBAR Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\SearchEnhancement
SCBAR Object recognized!
Type : RegValue
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value : SearchEnhancement
SCBAR Object recognized!
Type : Folder
Object : c:\program files\scbar
SCBAR Object recognized!
Type : File
Data : data
Object : c:\program files\scbar\
Created on : 12/08/03 9:23:22 PM
Last accessed : 12/18/03 4:08:37 AM
Last modified : 12/08/03 9:23:32 PM
SCBAR Object recognized!
Type : File
Data : v2
Object : c:\program files\scbar\
Created on : 12/08/03 9:23:22 PM
Last accessed : 12/18/03 4:08:37 AM
Last modified : 12/08/03 9:23:22 PM
SearchAndClick Object recognized!
Type : Folder
Object : c:\documents and settings\node3\application data\{2CF0B992-5EEB-4143-99C0-5297EF71F444}
SearchAndClick Object recognized!
Type : File
Data : stlbdist.xml
Object : c:\windows\system32\
FileSize : 3 KB
Created on : 12/11/03 4:26:13 AM
Last accessed : 12/18/03 4:08:17 AM
Last modified : 12/11/03 4:26:13 AM
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Microsoft\Windows\CurrentVersion\Uninstall\Dbi
VX2.BetterInternet Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : Software\Dbi
VX2.BetterInternet Object recognized!
Type : File
Data : bi.inf
Object : c:\windows\inf\
FileSize : 1 KB
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 11/19/03 4:56:38 PM
VX2.BetterInternet Object recognized!
Type : File
Data : biprep.exe
Object : c:\windows\
FileSize : 44 KB
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 07/04/03 12:51:14 PM
VX2.BetterInternet Object recognized!
Type : File
Data : bi.ini
Object : c:\windows\
FileSize : 224 KB
Created on : 12/17/03 12:43:07 AM
Last accessed : 12/18/03 4:08:17 AM
Last modified : 12/13/03 4:48:18 PM
VX2.BetterInternet Object recognized!
Type : File
Data : bi.dll
Object : c:\windows\
FileSize : 148 KB
FileVersion : 0, 0, 4, 19
ProductVersion : 0, 0, 4, 19
Copyright : Copyright
CompanyName : Better Internet, Inc.
FileDescription : www.abetterinternet.com
InternalName : Win32 Bi Application
OriginalFilename : BI.DLL
ProductName : Win32 BI Application
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:08:37 AM
Last modified : 09/16/03 6:05:40 PM
VX2.BetterInternet Object recognized!
Type : File
Data : biprep.exe
Object : c:\docume~1\node3\locals~1\temp\
FileSize : 44 KB
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 07/04/03 12:51:14 PM
VX2.BetterInternet Object recognized!
Type : File
Data : bi.inf
Object : c:\docume~1\node3\locals~1\temp\
FileSize : 1 KB
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 11/19/03 4:56:38 PM
VX2.BetterInternet Object recognized!
Type : File
Data : bi.dll
Object : c:\docume~1\node3\locals~1\temp\
FileSize : 148 KB
FileVersion : 0, 0, 4, 19
ProductVersion : 0, 0, 4, 19
Copyright : Copyright
CompanyName : Better Internet, Inc.
FileDescription : www.abetterinternet.com
InternalName : Win32 Bi Application
OriginalFilename : BI.DLL
ProductName : Win32 BI Application
Created on : 12/17/03 12:40:10 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 09/16/03 6:05:40 PM
VX2.BetterInternet Object recognized!
Type : File
Data : bi.cab
Object : c:\docume~1\node3\locals~1\temp\
FileSize : 85 KB
Created on : 12/17/03 12:40:09 AM
Last accessed : 12/18/03 4:51:12 AM
Last modified : 12/18/03 12:41:12 AM
WinFavorites Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_CURRENT_USER
Object : Software\WinFavorites
WinFavorites Object recognized!
Type : RegKey
Data :
Rootkey : HKEY_LOCAL_MACHINE
Object : SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Win Favorites
WinFavorites Object recognized!
Type : Folder
Object : c:\program files\WinFavorites
WinFavorites Object recognized!
Type : Folder
Object : c:\documents and settings\node3\favorites\Discount Adult Pass
WinFavorites Object recognized!
Type : Folder
Object : c:\documents and settings\node3\favorites\Adult Entertainment
WinFavorites Object recognized!
Type : File
Data : url.txt
Object : c:\
Created on : 12/17/03 12:40:12 AM
Last accessed : 12/18/03 4:51:20 AM
Last modified : 12/18/03 12:42:18 AM
WinFavorites Object recognized!
Type : File
Data : amateur
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : asian
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : ass & anal
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : bisexual
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : blowjob
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : boobs & titties
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : brunettes
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : celebrity & hollywood sex
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : cum
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : drunk
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : ebony & black
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : farm
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : fat
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : fetish
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:26 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : gangbang
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : gay
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : hardcore stuff
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : indian
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : interracial
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : latin porn
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : lesbians
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : m.i.l.f. & wives
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : mature & old
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : reality sites – new!
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : redheads
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : russian sex
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:25 AM
WinFavorites Object recognized!
Type : File
Data : teen sex
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : tranny
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
WinFavorites Object recognized!
Type : File
Data : voyeur & cams
Object : c:\documents and settings\node3\favorites\adult entertainment\
Created on : 12/17/03 12:40:25 AM
Last accessed : 12/17/03 12:40:29 AM
Last modified : 12/17/03 12:40:26 AM
Newton Knows Object recognized!
Type : Folder
Object : c:\docume~1\node3\locals~1\temp\vupd
Conditional scan result:
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
New objects : 95
Objects found so far: 262
10:51:21 PM Scan complete
Summary of this scan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Total scanning time :00:01:28:828
Objects scanned :35761
Objects identified :262
Objects ignored :0
New objects :262
Leave a Reply